9.3
CVE-2015-5165
- EPSS 10.86%
- Published 12.08.2015 14:59:24
- Last modified 12.04.2025 10:46:40
- Source secalert@redhat.com
- Teams watchlist Login
- Open Login
The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecified vectors.
Data is provided by the National Vulnerability Database (NVD)
Fedoraproject ≫ Fedora Version21
Fedoraproject ≫ Fedora Version22
Suse ≫ Linux Enterprise Debuginfo Version11 Updatesp1
Suse ≫ Linux Enterprise Server Version10 Updatesp4 SwEditionltss
Suse ≫ Linux Enterprise Server Version11 Updatesp1 SwEditionltss
Debian ≫ Debian Linux Version7.0
Debian ≫ Debian Linux Version8.0
Redhat ≫ Virtualization Version3.0
Redhat ≫ Enterprise Linux Compute Node Eus Version7.1
Redhat ≫ Enterprise Linux Compute Node Eus Version7.2
Redhat ≫ Enterprise Linux Compute Node Eus Version7.3
Redhat ≫ Enterprise Linux Compute Node Eus Version7.4
Redhat ≫ Enterprise Linux Compute Node Eus Version7.5
Redhat ≫ Enterprise Linux Compute Node Eus Version7.6
Redhat ≫ Enterprise Linux Compute Node Eus Version7.7
Redhat ≫ Enterprise Linux Desktop Version6.0
Redhat ≫ Enterprise Linux Eus Version6.7
Redhat ≫ Enterprise Linux Eus Compute Node Version6.7
Redhat ≫ Enterprise Linux For Power Big Endian Version6.0
Redhat ≫ Enterprise Linux For Power Big Endian Version7.0
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version6.7_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version7.1_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version7.2_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version7.3_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version7.4_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version7.5_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version7.6_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version7.7_ppc64
Redhat ≫ Enterprise Linux For Scientific Computing Version6.0
Redhat ≫ Enterprise Linux For Scientific Computing Version7.0
Redhat ≫ Enterprise Linux Server Version6.0
Redhat ≫ Enterprise Linux Server Version7.0
Redhat ≫ Enterprise Linux Server Aus Version7.3
Redhat ≫ Enterprise Linux Server Aus Version7.4
Redhat ≫ Enterprise Linux Server Aus Version7.6
Redhat ≫ Enterprise Linux Server Aus Version7.7
Redhat ≫ Enterprise Linux Server Eus Version7.1
Redhat ≫ Enterprise Linux Server Eus Version7.2
Redhat ≫ Enterprise Linux Server Eus Version7.3
Redhat ≫ Enterprise Linux Server Eus Version7.4
Redhat ≫ Enterprise Linux Server Eus Version7.5
Redhat ≫ Enterprise Linux Server Eus Version7.6
Redhat ≫ Enterprise Linux Server Eus Version7.7
Redhat ≫ Enterprise Linux Server Eus From Rhui Version6.7
Redhat ≫ Enterprise Linux Server From Rhui Version6.0
Redhat ≫ Enterprise Linux Server From Rhui Version7.0
Redhat ≫ Enterprise Linux Server Tus Version7.3
Redhat ≫ Enterprise Linux Server Tus Version7.6
Redhat ≫ Enterprise Linux Server Tus Version7.7
Redhat ≫ Enterprise Linux Workstation Version6.0
Redhat ≫ Enterprise Linux Workstation Version7.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 10.86% | 0.931 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
CWE-908 Use of Uninitialized Resource
The product uses or accesses a resource that has not been initialized.